CVE-2023-2712: Rental Module Project Rental Module
Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.
Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server. This issue affects Rental Module: before 23.05.15.
Affected products
- Rental Module Project Rental Module: before 23.05.15 (fixed in 23.05.15)
Published 2023-05-20. Last modified 2026-06-17.